EditorsAbout the SiteComes vs. MicrosoftUsing This Web SiteSite ArchivesCredibility IndexOOXMLOpenDocumentPatentsNovellNews DigestSite NewsRSS

01.12.11

Vista Phony 7 is Broken, Cracked

Posted in DRM, Microsoft, Windows at 5:00 pm by Dr. Roy Schestowitz

Co-authored with G. Forbes

Bulb

Summary: Vista Phony 7 [sic], Microsoft’s latest platform for mobile devices, has serious new deficiencies

MICROSOFT RUSHED Vista Phone 7, its ridiculous cross-vendor response to Android, some while ago. It had also been intended to compete with the Blackberry and hypePhone, controlled solely by RIM and Apple respectively. Signs of VP7′s immaturity continue to show, with this critical bug being reported: “Someone found out the hard way what happens when you install more than 15 applications that use the push notification system in Windows Phone 7. To put it bluntly: it stops working.”

“Microsoft has quickly become a laughing stock in the area of smart phone software.”When it comes to application sales, Microsoft cannot realise just how badly they did with the tiny userbase. Pouring salt on these wounds, the Windows Phone Marketplace DRM has been cracked anyway (more here):

“WPCentral has been given a proof of concept which shows them breaking through WP7 Marketplace’s DRM. The weakness has apparently been known to developers for some time, and WPCentral has given the information to Microsoft, and are working to patch the hole.”

Microsoft has quickly become a laughing stock in the area of smart phone software. Mediocre security is indicative of substandard programming, and with this DRM proof-of-concept crack, a solution has already arrived from the outside:

Tobias, the white hat hacker who recently revealed a proof-of-concept crack for the copy protection on Windows Phone 7 apps has taken steps to develop a solution for his own hack. His FreeMarketplace code (only 65.5kb in size) took only about 6 hours to develop, but in the process demonstrated how easily the Microsoft’s app DRM copy-protection for WP7 could be stripped. The crack was not intended to harm the WP7 Marketplace, but was intended as a critique of Microsoft’s seemingly lax security. To help protect developers in the interim, while Microsoft develops its own solution, Tobias has posted code that developers can deploy in their apps to help protect them from piracy.

Nick Farrell explains that this “software exploits a flaw in raw installation packages or “XAP” files, which means they can be freely downloaded. This works because the Zune client software downloads XML files with all the package locations to enable application browsing and installation, and both the XML and XAP files are served without restriction.” Microsoft has had problems with managing operating system permissions for a long, long time.

Share this post: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Digg
  • del.icio.us
  • Reddit
  • co.mments
  • DZone
  • email
  • Google Bookmarks
  • LinkedIn
  • NewsVine
  • Print
  • Technorati
  • TwitThis
  • Facebook

If you liked this post, consider subscribing to the RSS feed or join us now at the IRC channels.

Pages that cross-reference this one

What Else is New


  1. Techrights Confirmed as a Target of EPO Surveillance, With Help From Control Risks Group (CRG)

    Unveiling the cloak of secrecy from long-term surveillance by the European Patent Office (EPO) and a London-based mercenary it hired, bypassing the law



  2. Google's Fight to Keep APIs Free is Lost, Let's Hope Google Continues Fighting

    SCOTUS refuses to rule that APIs cannot be considered copyright-'protected', despite common sense and despite Java (which the case is about) being Free/libre software



  3. Patent Trolls in the Post-Alice World

    A round-up of news about patent trolls in the United States, some of whom are are doing well and some of them not as well



  4. DDOS Attacks Against Techrights

    Information about some of the most recent DDOS attacks against this Web site and the steps to be taken next



  5. The Patent System Not What it Used to be, Large Corporations and Patent Lawyers the Principal Beneficiaries

    A look at some recent patent stories and what can be deduced from them, based on statistics and trends



  6. After Intervention by the Council of Europe Comes a Detailed Summary of the Situation in the European Patent Office (EPO)





  7. IRC Proceedings: May 31st - June 27th, 2015

    Many IRC logs



  8. Links 28/6/2015: Manjaro Linux Cinnamon 0.8.13, VectorLinux 7.1

    Links for the day



  9. Williamson v. Citrix Online (at CAFC) Reinforces Alice v. CLS Bank (at SCOTUS) in Crushing Software Patents

    More patent news from the United States, again serving to indicate that software patents over there are getting weak (harder to defend in court or acquire from the patent office)



  10. Proskauer Rose LLP is Cherry-Picking Cases to Make Software Patents Seem Eligible Despite Alice v. CLS Bank

    Naming and shaming those who are trying to reshape the consensus despite a rather consistent pattern of software patents being rejected



  11. IAM Biased: How IAM 'Magazine' Glorifies Patent Stockpiling

    A look at the bias of one of the most overzealous sites for and by patent lawyers



  12. PATENT Act No Longer in the News... and That's Just Fine

    Putting the PATENT Act aside for the time being, for it has little or no impact on the really problematic patents



  13. The Latest Lies From Microsoft's PR Apparatus/Public Face, Mr. Nadella

    Having spread the outrageous lie that “Microsoft loves Linux” (whilst obviously attacking it in many ways), Microsoft's CEO (essentially Bill Gates' right-hand man) says Microsoft is “one of the biggest contributors to Linux kernel” (because of proprietary software it tries to contaminate it with while violating the terms of the GPL)



  14. Microsoft Jack (Schofield) Promotes Microsoft's Proprietary Lock-in and Calls People Who Recommend Free/Libre Software 'Trolls'

    Jack Schofield, writing for a Bill Gates-funded paper despite claiming to have retired, promotes Microsoft Office and insults all those readers who do not agree with him



  15. The Council of Europe Slams the EPO as Political Pressure Grows for EPO Management to Obey the Law

    Battistelli et al. come under yet more fire as politicians -- many of whom from Battistelli's home country -- become better informed of the EPO's management fiasco, abuses, and scandals



  16. Operating Systems Usage Based on Technical Site Statistics

    ome numbers to show what goes on in sites that do not share information about their visitors (unlike Windows-centric sites which target non-technical audiences)



  17. Links 27/6/2015: Wine 1.7.46, SparkyLinux 4.0

    Links for the day



  18. Proprietary Software on Top of Proprietary Software (AV on Windows) Only an Illusion of Security

    Remarks on the recent revelations about code and communication interceptions targeting insecurity firms and Microsoft's claim that 'transparency' alone would be enough to assure security



  19. The EPO's Circus of Nepotism, Corporatism and Gross Abuse is Promoting the Unitary Patent

    The shameful management of the EPO, which Benoît Battistelli constructed based on his nefarious self-serving agenda, keeps pushing forth in a direction that greatly harms European citizens while mistreating the EPO's technical staff (scientists and examiners)



  20. Links 26/6/2015: Ardour 4.1, GNOME 3.17.3 Released

    Links for the day



  21. An Estimated 1,000 EPO Staff in Munich Demonstrated Against EPO Management Yesterday Afternoon

    Earliest coverage of yesterday's protest against EPO corruption and abuses



  22. Microsoft Windows So Insecure That Even Fonts Are Remotely Exploitable

    Windows userbase is once again under serious threat and high risk because something as simple as fonts (rendering of text/pixels on the screen) isn't done securely in Windows



  23. Microsoft is 'Buying' the Media Ahead of Vista 10 Launch

    Signs serve to indicate that Microsoft is already tightening its grip on technology news sites, ensuring that they give Microsoft disproportionate levels of coverage



  24. DockerCon 2015 Infiltrated by Microsoft

    DockerCon gives room to Microsoft propagandists who want to divert the audience's attention from secure GNU/Linux focus to proprietary Windows with back doors and surveillance



  25. Links 25/6/2015: Docker Focus, NVIDIA Opening Slightly

    Links for the day



  26. The Lie or the Fiction of Microsoft Tolerating GNU/Linux

    The 'Microsoft loves Linux' nonsense cannot be put to rest, as that tired old lie keeps resurfacing in the media



  27. Microsoft is Again Demonstrating That It is Not Interested in Making Windows Secure

    Microsoft decides to leave Windows with flaws in it, claiming that fixing the flaws would not be worth Microsoft's resources



  28. Not Only is Vista 10 Not Free, It is Getting More Expensive, According to the Taiwanese Press

    More proof that Microsoft charges quite a lot for Vista 10 (at OEM level), despite the perpetual deception about costs



  29. EPO Protest in Munich and Growing Unpopularity of EPO Management, Media Manipulation by the Management

    Poll shows that the European Patent Office (EPO) comes under fire for its media strategy which involves wasting taxpayers' money on fake/organic media coverage that glorifies the EPO



  30. Links 24/6/2015: Meizu MX4, Red Hat and Samsung Partner, Women in Open Source Awards

    Links for the day


CoPilotCo

RSS 64x64RSS Feed: subscribe to the RSS feed for regular updates

Home iconSite Wiki: You can improve this site by helping the extension of the site's content

Home iconSite Home: Background about the site and some key features in the front page

Chat iconIRC Channel: Come and chat with us in real time

CoPilotCo

Recent Posts